Description
This script is vulnerable to Lotus Notes Formula Injection.
Lotus Notes Formula Injection is a vulnerability that allows an attacker to alter Lotus Notes Formula statements by manipulating the user input. Lotus Notes Formula Injection occurs when web applications accept user input that is directly placed into the Evaluate function from LotusScript. Consult References for more information about this vulnerability.
Remediation
Your script should filter metacharacters from user input.
References
Related Vulnerabilities
WordPress Plugin Quiz Maker Multiple SQL Injection Vulnerabilities (6.2.0.8)
WordPress Plugin VideoWhisper Video Presentation 'c_status.php' SQL Injection (1.1)
WordPress Plugin Quiz and Survey Master (QSM)-Easy Quiz and Survey Maker SQL Injection (7.3.4)
WordPress Plugin Gallery Objects SQL Injection (0.4)
WordPress Plugin WP E-Signature Remote Code Execution (1.5.6.5)